CVE-2017-11478
- EPSS 0.16%
- Veröffentlicht 20.07.2017 16:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadOneDJVUImage function in coders/djvu.c in ImageMagick through 6.9.9-0 and 7.x through 7.0.6-1 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed DJVU image.
CVE-2017-11446
- EPSS 0.24%
- Veröffentlicht 19.07.2017 07:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadPESImage function in coders\pes.c in ImageMagick 7.0.6-1 has an infinite loop vulnerability that can cause CPU exhaustion via a crafted PES file.
CVE-2017-11447
- EPSS 0.6%
- Veröffentlicht 19.07.2017 07:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadSCREENSHOTImage function in coders/screenshot.c in ImageMagick before 7.0.6-1 has memory leaks, causing denial of service.
CVE-2017-11448
- EPSS 0.66%
- Veröffentlicht 19.07.2017 07:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadJPEGImage function in coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to obtain sensitive information from uninitialized memory locations via a crafted file.
CVE-2017-11449
- EPSS 0.44%
- Veröffentlicht 19.07.2017 07:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
coders/mpc.c in ImageMagick before 7.0.6-1 does not enable seekable streams and thus cannot validate blob sizes, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via an image rec...
CVE-2017-11450
- EPSS 0.4%
- Veröffentlicht 19.07.2017 07:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
coders/jpeg.c in ImageMagick before 7.0.6-1 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via JPEG data that is too short.
CVE-2017-11352
- EPSS 0.98%
- Veröffentlicht 17.07.2017 13:18:21
- Zuletzt bearbeitet 13.05.2026 00:24:29
In ImageMagick before 7.0.5-10, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. NOTE: this vulnerability exists because of an incomplete fix for CVE-2017-9144.
CVE-2017-11360
- EPSS 0.38%
- Veröffentlicht 17.07.2017 13:18:21
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadRLEImage function in coders\rle.c in ImageMagick 7.0.6-1 has a large loop vulnerability via a crafted rle file that triggers a huge number_pixels value.
CVE-2017-11310
- EPSS 0.39%
- Veröffentlicht 13.07.2017 18:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The read_user_chunk_callback function in coders\png.c in ImageMagick 7.0.6-1 Q16 2017-06-21 (beta) has memory leak vulnerabilities via crafted PNG files.
CVE-2017-11188
- EPSS 0.12%
- Veröffentlicht 12.07.2017 15:29:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
The ReadDPXImage function in coders\dpx.c in ImageMagick 7.0.6-0 has a large loop vulnerability that can cause CPU exhaustion via a crafted DPX file, related to lack of an EOF check.